VYPR

logcheck

by Debian

CVEs (2)

  • CVE-2017-20148CriSep 20, 2022
    risk 0.64cvss 9.8epss 0.01

    In the ebuild package through logcheck-1.3.23.ebuild for Logcheck on Gentoo, it is possible to achieve root privilege escalation from the logcheck user because of insecure recursive chown calls.

  • CVE-2004-0404Jul 7, 2004
    risk 0.00cvss epss 0.00

    logcheck before 1.1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary directory in /var/tmp.